4 ms·
Is MAC whitelisting anything but security theater? Isn't it trivial to determine a valid client MAC then spoof it?
by kayson 7mo ago
Is MAC whitelisting anything but security theater? Isn't it trivial to determine a valid client MAC then spoof it?
- drnick1 7mo agoWhat makes you say that? It does not seem trivial at all to guess a valid MAC.
- ProllyInfamous 7mo agoIt's not just a guess. Any decent sniffer (e.g. airsnort) can immediately identify all associations between all WiFi/Bluetooth devices. DD-WRT (router firmware/OS) has this WiFi-associations detector built-in ("local WiFi map"). There is no need to attempt any sort of hack — associations are publicly-broadcast information. Then, just pick any authorized MAC and duplicate as your own.
- 0x457 7mo agoIt's in managmenet frames that you can sniff.
- ipython 7mo agoDoes wpa3 pmf fix this particular issue?
- ProllyInfamous 7mo agoThis isn't considered "broken" — it's part of how WiFi works/associates.
- tirant 7mo agoThe MAC addresses of all the Wi-Fi clients are broadcasted in plain radio format all over the 2.4GHz. It is trivial.